Android: Mobile browsers being used to mine cryptocurrency
Researchers discovered three Android apps using two different miners.
Mining cryptocurrency is all the rage right now. We talked about what mining cryptocurrency means a few weeks ago, and now it’s back in the news.
For those of you who didn’t read our last piece, or who don’t already have an idea, mining cryptocurrency involves putting in the requisite work to solve a block in the blockchain and receive the reward. There’s a lot to unpack there. Blockchain is the backbone of cryptocurrency. It’s essentially a running cryptographic ledger that tracks all of the cryptocurrency’s movement. As transactions are added to the ledger, there are miners that are using their computing power to find a value that will close off that block and start a new one. When a block is closed, the miners receive a reward in the form of cryptocurrency.
However, when I say computing power I don’t mean you can set up your laptop and start providing proof of work. It takes massive amounts of computing power. When done in a legitimate sense, people tend to group their computing power together and split the pot.
When done illegitimately, hackers spread malware to take over peoples’ computers and then siphon off part of their computing power to help solve the block.
Mining Using Android Phones
Researchers from Trend Micro recently discovered three Android apps with mining malware included. Two of them: Recitiamo Santo Rosario Free and SafetyNet Wireless use an in-browser Monero miner called “Coinhive.” The other: Car Wallpaper HD, includes a malicious version of cpuminer.
Coinhive has responded by releasing a new version of its mining software that runs scripts from a domain that requires computers to register themselves. Unfortunately, older versions of the malware are still supported.
Google has already removed the apps from its Play Store.
5 Ways to Determine if a Website is Fake, Fraudulent, or a Scam – 2018
in Hashing Out Cyber SecurityHow to Fix ‘ERR_SSL_PROTOCOL_ERROR’ on Google Chrome
in Everything EncryptionRe-Hashed: How to Fix SSL Connection Errors on Android Phones
in Everything EncryptionCloud Security: 5 Serious Emerging Cloud Computing Threats to Avoid
in ssl certificatesThis is what happens when your SSL certificate expires
in Everything EncryptionRe-Hashed: Troubleshoot Firefox’s “Performing TLS Handshake” Message
in Hashing Out Cyber SecurityReport it Right: AMCA got hacked – Not Quest and LabCorp
in Hashing Out Cyber SecurityRe-Hashed: How to clear HSTS settings in Chrome and Firefox
in Everything EncryptionRe-Hashed: The Difference Between SHA-1, SHA-2 and SHA-256 Hash Algorithms
in Everything EncryptionThe Difference Between Root Certificates and Intermediate Certificates
in Everything EncryptionThe difference between Encryption, Hashing and Salting
in Everything EncryptionRe-Hashed: How To Disable Firefox Insecure Password Warnings
in Hashing Out Cyber SecurityCipher Suites: Ciphers, Algorithms and Negotiating Security Settings
in Everything EncryptionThe Ultimate Hacker Movies List for December 2020
in Hashing Out Cyber Security Monthly DigestAnatomy of a Scam: Work from home for Amazon
in Hashing Out Cyber SecurityThe Top 9 Cyber Security Threats That Will Ruin Your Day
in Hashing Out Cyber SecurityHow strong is 256-bit Encryption?
in Everything EncryptionRe-Hashed: How to Trust Manually Installed Root Certificates in iOS 10.3
in Everything EncryptionHow to View SSL Certificate Details in Chrome 56
in Industry LowdownPayPal Phishing Certificates Far More Prevalent Than Previously Thought
in Industry Lowdown